Passchain formerly HW FIDO2 Provider - Hardware Security SDK app

Website

Short description

Saw this here Revolut adds (working) passkeys on Android - #9 by Encounter5729

HW Fido2 Provider is a credential provider that allows you to use your USB/Bluetooth/NFC security key for passkeys/fido2/u2f authentication.

Why I think this tool should be considered

Seems very useful to be able to use hardware passkeys on your device more easily.

Is not relying on Google Play Services I believe and it seems more easy to choose this at any time.

It can be set as additional passkey app allowing you to always pick it on passkey prompts besides your default password manager.

Section on Privacy Guides

Password managers

I’m all for adding an app like this but I think GitHub - mimi89999/Authnkey: Passkey credential provider for hardware security keys · GitHub seems like a better option from my experience using both apps.

I’m a bit confused here cause it seems to be 2 different apps.

The one from Izzy that I use, as far as I know comes from here:

Not the github link provided.

I have seen this one but haven’t tried it yet. I think it’s worth mentioning that Token2 has a blog post talking about it:

They are also providing a version of it on the Google play store now:

The AuthnKey is now available as a Google Play application under the name “FIDO Bridge.” The repackaged app only modifies the branding and package ID to support distribution via Google Play. The underlying AuthnKey project remains unchanged.

This is correct. @ph00lt0 when you can please change the website link for the project to s1m/hw-fido2-provider - Codeberg.org.

The one linked is a much older inactive project by Cotech Hardware Security SDK linked here for example: https://www.yubico.com/works-with-yubikey/catalog/cotech-hardware-security-sdk/

done, thanks!

S1m did say at one point I believe in the Molly matrix chat that he’d like to publish HW-Fido2-Provider to accrescent. He also said he’d likely have to rename the package id, and was planning on changing the name to Passchain.

I want clarify though that this was months ago and his plans may have changed.

I think it might be a good idea to recommend both HW-Fido2-Provider and Authnkey/FIDO Bridge based on preferred app acquisition method.

I do think in my little bit of usage Authenkey works a bit better at least for NFC with pin.

Funny timing of my post. A release candidate actually got released yesterday, but codeberg was down earlier, so I couldn’t check.

It will be Passchain now so maybe the post should be changed to match that @ph00lt0 .

Other than that my point still stands for NFC with pin, since it doesn’t allow you to enter the pin before tapping it like Authnkey.

Passchain is now on Accrescent!